CVE-2026-95386

high

Description

The TTL file parser could go into an infinite loop. Discovered independently by Aisle Research (Dmitrijs Trizna, Luigino Camastra, Ze Sheng (O2Lab & TAMU), Igor Morgenstern) and Daniel Birtwhistle. We are unaware of any exploits for this issue. It may be possible to make Wireshark consume excessive CPU resources by convincing someone to read a malformed packet trace file.

Details

Source: Mitre, NVD

Published: 2025-11-19

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Severity: Medium

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Severity: High